Description
VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.
Published: 2026-07-30
Score: 9.3 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

VMware ESX contains a buffer overflow that occurs when the VMXNET3 virtual network adapter writes outside its allocated memory space. The flaw is classified as an out‑of‑bounds write (CWE‑787). When exploited, a malicious actor who has local administrative privileges on a virtual machine can trigger this overflow and gain the ability to execute arbitrary code on the host hypervisor, effectively escalating privileges from the virtual machine to the host environment.

Affected Systems

Affected vendors and products include VMware Cloud Foundation, VMware ESX, VMware Telco Cloud Platform and VMware vSphere Foundation. All versions that ship with the vulnerable VMXNET3 adapter are susceptible; specific version numbers are not supplied in the advisory.

Risk and Exploitability

The CVSS score of 9.3 indicates a high severity and a broad impact on confidentiality, integrity and availability. The EPSS score of 0.00281 (approximately 0.28%) indicates a low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector requires local administrative access within the virtual machine; this is inferred from the description and typical VM privileges. If the conditions are met, code execution on the host hypervisor is achievable, allowing full control of the host.

Generated by OpenCVE AI on August 2, 2026 at 05:25 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the VMware ESX security update that addresses the VMXNET3 out‑of‑bounds write vulnerability as soon as possible.
  • If an update cannot be applied immediately, replace or disable VMXNET3 adapters on all impacted virtual machines to eliminate the attack surface.
  • Limit local administrative privileges on virtual machines to only those roles that absolutely require them, and monitor privileged activity for signs of exploitation.

Generated by OpenCVE AI on August 2, 2026 at 05:25 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 30 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Vmware
Vmware cloud Foundation
Vmware esx
Vmware telco Cloud Platform
Vmware vsphere Foundation
Vendors & Products Vmware
Vmware cloud Foundation
Vmware esx
Vmware telco Cloud Platform
Vmware vsphere Foundation

Thu, 30 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 30 Jul 2026 12:45:00 +0000

Type Values Removed Values Added
Description VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.
Title VMXNET3 out-of-bounds write vulnerability
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 9.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Vmware Cloud Foundation Esx Telco Cloud Platform Vsphere Foundation
cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2026-07-30T13:02:29.161Z

Reserved: 2026-05-20T10:00:58.694Z

Link: CVE-2026-47876

cve-icon Vulnrichment

Updated: 2026-07-30T13:02:26.649Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-07-30T13:16:51.100

Modified: 2026-07-30T14:16:58.467

Link: CVE-2026-47876

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T05:30:06Z

Weaknesses